CVE-2020-28945

OX App Suite 7.10.4 and earlier allows XSS via crafted content to reach an undocumented feature, such as ![](http://onerror=Function.constructor, in a Notes item.
Configurations

Configuration 1

cpe:2.3:a:open-xchange:open-xchange_appsuite:*:*:*:*:*:*:*:*

Information

Published : 2021-05-03 08:15

Updated : 2021-05-07 12:50


NVD link : CVE-2020-28945

Mitre link : CVE-2020-28945

Products Affected
No products.
CWE